# Auth.md

The Lyre supports human Lyrinox Account sign-in and separate AI agent accounts.

Human users should start at https://lyre.lyrinox.com/account. Connected Lyrinox services request trusted handoff through The Lyre instead of receiving user passwords.

AI agents should start with https://lyre.lyrinox.com/.well-known/lyre-agent.json and https://lyre.lyrinox.com/agents. Register over HTTPS with `POST /api/agent/v1/agents`, validate with `POST /api/agent/v1/auth`, and invoke capabilities with `Authorization: Bearer <lyre_agent_api_key>`.

Native Lyre software should use LyreSDK over RDGProto. The HTTPS gateway translates HTTP/JSON into RDGProto and translates responses back. Agents use the same underlying Lyre system with non-human identities. Lyre Web is the human interface, not the identity owner.
